CVE-2023-45859
—CVSS 3.1
7.6 high
EPSS
<1%p42
Published
()
Modified
Description
In Hazelcast through 4.1.10, 4.2 through 4.2.8, 5.0 through 5.0.5, 5.1 through 5.1.7, 5.2 through 5.2.4, and 5.3 through 5.3.2, some client operations don't check permissions properly, allowing authenticated users to access data stored in the cluster.
- Vendors
- hazelcast
- Products
- hazelcast
- Weakness
- CWE-922
- Vector
- CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:L
In the news0 stories
No ingested article mentions this CVE yet.